AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-3796

HIGH · CVSS 7.6 EPSS 1.89%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-07-17 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-3796
Severity
HIGH
CVSS
7.6
EPSS
1.89%

Original NVD Description

The password reset feature in the Spam Quarantine HTTP interface for MailMarshal SMTP 6.2.0.x before 6.2.1 allows remote attackers to modify arbitrary account information via a UserId variable with a large amount of trailing whitespace followed by a malicious value, which triggers SQL buffer truncation due to length inconsistencies between variables.